OPSWAT MetaDefender Core + OPSWAT Adaptive Sandbox
About the product
OPSWAT MetaDefender Core, combined with the OPSWAT Sandbox module, creates a comprehensive system for analyzing files for known and unknown threats, used in environments requiring a high level of protection (SCADA, public sector, finance, defense industry, critical infrastructure).
Multiscanning performed by Core involves simultaneous scanning of a file by up to 30 independent AV engines, which significantly increases the chance of detecting threats that could be missed by a single solution. At the same time, OPSWAT Sandbox launches suspicious files in an isolated virtual environment (Windows/Linux), monitoring their behavior and identifying malicious activities: network communication, registry changes, process launches, file dropping.
The system generates detailed analytical reports with risk assessment, hashing, behavior tagging, and the ability to automatically classify threats. The entire system can operate locally, without the need to connect to the cloud, and can be integrated with SIEM, SOAR, EDR, and DLP solutions.